The package has focused dependencies, a substantial tested codebase, and clear organization backing. Security documentation and scanning are absent, so ongoing oversight is less visible.
62%
Total Score
75
100
83
83
All five releases arrived within minutes on the same day, and the package has had no recorded release activity for about 125 days. That suggests a young project with limited demonstrated continuity.
The repository recorded zero commits and zero active maintainers during the last three months. For a package released about 125 days ago, this is a meaningful lack of visible maintenance.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little independent evidence of maturity.
Composer is used for builds, but no security scanning tools were detected. The build setup is present, while security oversight is less transparent.
No repository security policy was found. This is a transparency and response-process gap, though it is not severe enough to make the release unfit on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.